Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-25165 – BD Alaris PC Unit, Model 8015, Versions 9.33.1 and earlier and BD Alaris

BD Alaris PC Unit, Model 8015, Versions 9.33.1 and earlier and BD Alaris Systems Manager, Versions 4.33 and earlier The affected products are vulnerable to a network session authentication vulnerability within the authentication process between specified versions of the BD Alaris PC Unit and the BD Alaris Systems Manager. If exploited, an attacker could perform a denial-of-service attack on the BD Alaris PC Unit by modifying the configuration headers of data in transit. A denial-of-service attack could lead to a drop in the wireless capability of the BD Alaris PC Unit, resulting in manual operation of the PC Unit.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25165

Reference (s):

  • https://us-cert.cisa.gov/ics/advisories/icsma-20-317-01
  • URL: https://us-cert.cisa.gov/ics/advisories/icsma-20-317-01
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-8508 - Cross-site scripting (XSS) vulnerability in s_network.asp in the Denon AV

2021-current

CVE-2020-0297 - In devicepolicy service, there is a possible permission bypass due to an

2021-current

CVE-2020-14315 - A memory corruption vulnerability is present in bspatch as shipped in Col